Auth0 Token Exchange Profiles API

The token-exchange-profiles API from Auth0 — 2 operation(s) for token-exchange-profiles.

Business capability
Identity & Access Management BC-620.20

Operations 5

Each operation below carries the questions people ask an LLM about it and the instructions they give an agent to run it. Generated by API Evangelist overlay

GET /token-exchange-profiles List Token Exchange Profiles · Get Token Exchange Profiles #
Ask an LLM
“Which custom token exchange profiles are configured in my tenant?”
“Can I page through token exchange profiles with a cursor?”
Tell an agent
List my Token Exchange Profiles.
List {take} token exchange profiles from cursor {from}.
POST /token-exchange-profiles Create a Token Exchange Profile · Create a Token Exchange Profile #
Ask an LLM
“How do I let apps exchange an external token for one issued by my tenant?”
“What Action and subject token type does a token exchange profile need?”
Tell an agent
Create token exchange profile {name} for subject token type {subject_token_type} using Action {action_id} and type {type}.
Set up a {type} token exchange profile called {name} validated by Action {action_id} for {subject_token_type}.
GET /token-exchange-profiles/{id} Get a Token Exchange Profile · Get a Token Exchange Profile #
Ask an LLM
“Which Action validates tokens for a given exchange profile?”
“Can I look up one token exchange profile by ID?”
Tell an agent
Show me token exchange profile {id}.
Get the subject token type of exchange profile {id}.
DELETE /token-exchange-profiles/{id} Delete a Token Exchange Profile · Delete a Token Exchange Profile #
Ask an LLM
“How do I turn off a custom token exchange I set up?”
“Can I delete a token exchange profile by ID?”
Tell an agent destructive · confirm first
Delete token exchange profile {id}.
Remove the custom token exchange profile {id}.
PATCH /token-exchange-profiles/{id} Rename or retarget a Token Exchange Profile · Update an Existing Token Exchange Profile #
Ask an LLM
“Can I change the subject token type on an existing exchange profile?”
“Which fields of a token exchange profile can be edited later?”
Tell an agent
Rename token exchange profile {id} to {name}.
Change the subject token type of profile {id} to {subject_token_type}.

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/auth0-token-exchange-profiles-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

auth0-token-exchange-profiles-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: Auth0 Management Token Exchange Profiles API
  description: Auth0 Management API v2.
  termsOfService: https://auth0.com/web-terms/
  contact:
    name: Auth0 Support
    url: https://support.auth0.com
  version: '2.0'
servers:
- url: https://{tenantDomain}/api/v2
  variables:
    tenantDomain:
      default: '{TENANT}.auth0.com'
      description: Auth0 Tenant Domain
security:
- bearerAuth: []
tags:
- name: token-exchange-profiles
paths:
  /token-exchange-profiles:
    get:
      summary: Get Token Exchange Profiles
      description: 'Retrieve a list of all Token Exchange Profiles available in your tenant.


        By using this feature, you agree to the applicable Free Trial terms in Okta’s Master Subscription Agreement. It is your responsibility to securely validate the user’s subject_token. See User Guide for more details.


        This endpoint supports Checkpoint pagination. To search by checkpoint, use the following parameters:


        from: Optional id from which to start selection.


        take: The total amount of entries to retrieve when using the from parameter. Defaults to 50.


        Note: The first time you call this endpoint using checkpoint pagination, omit the from parameter. If there are more results, a next value is included in the response. You can use this for subsequent API calls. When next is no longer included in the response, no pages are remaining.'
      tags:
      - token-exchange-profiles
      parameters:
      - name: from
        in: query
        description: Optional Id from which to start selection.
        schema:
          type: string
      - name: take
        in: query
        description: Number of results per page. Defaults to 50.
        schema:
          type: integer
          minimum: 1
          maximum: 100
      responses:
        '200':
          description: Token Exchange Profile successfully retrieved.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ListTokenExchangeProfileResponseContent'
        '400':
          description: Invalid request query string. The message will vary depending on the cause.
        '401':
          description: Invalid token.
          x-description-1: Invalid signature received for JSON Web Token validation.
          x-description-2: Client is not global.
        '403':
          description: 'Insufficient scope; expected any of: read:token_exchange_profiles.'
        '429':
          description: Too many requests. Check the X-RateLimit-Limit, X-RateLimit-Remaining and X-RateLimit-Reset headers.
      operationId: get_token-exchange-profiles
      x-release-lifecycle: EA
      x-operation-name: list
      x-operation-group: tokenExchangeProfiles
      security:
      - bearerAuth: []
      - oAuth2ClientCredentials:
        - read:token_exchange_profiles
    post:
      summary: Create a Token Exchange Profile
      description: 'Create a new Token Exchange Profile within your tenant.


        By using this feature, you agree to the applicable Free Trial terms in Okta’s Master Subscription Agreement. It is your responsibility to securely validate the user’s subject_token. See User Guide for more details.'
      tags:
      - token-exchange-profiles
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/CreateTokenExchangeProfileRequestContent'
          application/x-www-form-urlencoded:
            schema:
              $ref: '#/components/schemas/CreateTokenExchangeProfileRequestContent'
      responses:
        '201':
          description: Token exchange profile successfully created.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/CreateTokenExchangeProfileResponseContent'
        '400':
          description: Type field must be custom
          x-description-1: Action is not deployed
          x-description-2: 'Action must have supported_triggers: custom-token-exchange'
          x-description-3: Action not found
          x-description-0: Invalid request body. The message will vary depending on the cause.
        '401':
          description: Invalid token.
          x-description-1: Invalid signature received for JSON Web Token validation.
          x-description-2: Client is not global.
        '403':
          description: You reached the limit of entities of this type for this tenant.
          x-description-0: 'Insufficient scope; expected any of: create:token_exchange_profiles.'
        '409':
          description: subject_token_type already exists for tenant
        '429':
          description: Too many requests. Check the X-RateLimit-Limit, X-RateLimit-Remaining and X-RateLimit-Reset headers.
      operationId: post_token-exchange-profiles
      x-release-lifecycle: EA
      x-operation-name: create
      x-operation-group: tokenExchangeProfiles
      security:
      - bearerAuth: []
      - oAuth2ClientCredentials:
        - create:token_exchange_profiles
  /token-exchange-profiles/{id}:
    get:
      summary: Get a Token Exchange Profile
      description: 'Retrieve details about a single Token Exchange Profile specified by ID.


        By using this feature, you agree to the applicable Free Trial terms in Okta’s Master Subscription Agreement. It is your responsibility to securely validate the user’s subject_token. See User Guide for more details.'
      tags:
      - token-exchange-profiles
      parameters:
      - name: id
        in: path
        description: ID of the Token Exchange Profile to retrieve.
        required: true
        schema:
          type: string
      responses:
        '200':
          description: Token Exchange Profile successfully retrieved.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/GetTokenExchangeProfileResponseContent'
        '400':
          description: Invalid request query string. The message will vary depending on the cause.
        '401':
          description: Invalid token.
          x-description-1: Invalid signature received for JSON Web Token validation.
          x-description-2: Client is not global.
        '403':
          description: 'Insufficient scope; expected any of: read:token_exchange_profiles.'
        '404':
          description: Token Exchange Profile not found.
        '429':
          description: Too many requests. Check the X-RateLimit-Limit, X-RateLimit-Remaining and X-RateLimit-Reset headers.
      operationId: get_token-exchange-profiles_by_id
      x-release-lifecycle: EA
      x-operation-name: get
      x-operation-group: tokenExchangeProfiles
      security:
      - bearerAuth: []
      - oAuth2ClientCredentials:
        - read:token_exchange_profiles
    delete:
      summary: Delete a Token Exchange Profile
      description: 'Delete a Token Exchange Profile within your tenant.


        By using this feature, you agree to the applicable Free Trial terms in Okta''s Master Subscription Agreement. It is your responsibility to securely validate the user''s subject_token. See User Guide for more details.'
      tags:
      - token-exchange-profiles
      parameters:
      - name: id
        in: path
        description: ID of the Token Exchange Profile to delete.
        required: true
        schema:
          type: string
      responses:
        '204':
          description: Token Exchange Profile successfully deleted.
        '401':
          description: Invalid token.
          x-description-1: Invalid signature received for JSON Web Token validation.
          x-description-2: Client is not global.
        '403':
          description: 'Insufficient scope; expected any of: delete:token_exchange_profiles.'
        '429':
          description: Too many requests. Check the X-RateLimit-Limit, X-RateLimit-Remaining and X-RateLimit-Reset headers.
      operationId: delete_token-exchange-profiles_by_id
      x-release-lifecycle: EA
      x-operation-name: delete
      x-operation-group: tokenExchangeProfiles
      security:
      - bearerAuth: []
      - oAuth2ClientCredentials:
        - delete:token_exchange_profiles
    patch:
      summary: Update an Existing Token Exchange Profile
      description: 'Update a Token Exchange Profile within your tenant.


        By using this feature, you agree to the applicable Free Trial terms in Okta''s Master Subscription Agreement. It is your responsibility to securely validate the user''s subject_token. See User Guide for more details.'
      tags:
      - token-exchange-profiles
      parameters:
      - name: id
        in: path
        description: ID of the Token Exchange Profile to update.
        required: true
        schema:
          type: string
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/UpdateTokenExchangeProfileRequestContent'
          application/x-www-form-urlencoded:
            schema:
              $ref: '#/components/schemas/UpdateTokenExchangeProfileRequestContent'
      responses:
        '200':
          description: Token exchange profile successfully updated.
        '400':
          description: subject_token_type already exists for tenant
          x-description-1: Unable to update field.
          x-description-0: Invalid request body. The message will vary depending on the cause.
        '401':
          description: Invalid token.
          x-description-1: Invalid signature received for JSON Web Token validation.
          x-description-2: Client is not global.
        '403':
          description: 'Insufficient scope; expected any of: update:token_exchange_profiles.'
        '404':
          description: Token exchange profile not found.
        '429':
          description: Too many requests. Check the X-RateLimit-Limit, X-RateLimit-Remaining and X-RateLimit-Reset headers.
      operationId: patch_token-exchange-profiles_by_id
      x-release-lifecycle: EA
      x-operation-name: update
      x-operation-group: tokenExchangeProfiles
      security:
      - bearerAuth: []
      - oAuth2ClientCredentials:
        - update:token_exchange_profiles
components:
  schemas:
    UpdateTokenExchangeProfileRequestContent:
      type: object
      additionalProperties: false
      minProperties: 1
      properties:
        name:
          type: string
          description: Friendly name of this profile.
          default: Token Exchange Profile 1
          minLength: 3
          maxLength: 50
        subject_token_type:
          type: string
          description: Subject token type for this profile. When receiving a token exchange request on the Authentication API, the corresponding token exchange profile with a matching subject_token_type will be executed. This must be a URI.
          minLength: 8
          maxLength: 100
          format: url
    CreateTokenExchangeProfileResponseContent:
      type: object
      additionalProperties: true
      properties:
        id:
          type: string
          description: The unique ID of the token exchange profile.
          format: token-exchange-profile-id
        name:
          type: string
          description: Friendly name of this profile.
          default: Token Exchange Profile 1
          minLength: 3
          maxLength: 50
        subject_token_type:
          type: string
          description: Subject token type for this profile. When receiving a token exchange request on the Authentication API, the corresponding token exchange profile with a matching subject_token_type will be executed. This must be a URI.
          minLength: 8
          maxLength: 100
          format: url
        action_id:
          type: string
          description: The ID of the Custom Token Exchange action to execute for this profile, in order to validate the subject_token. The action must use the custom-token-exchange trigger.
          minLength: 1
          maxLength: 36
        type:
          $ref: '#/components/schemas/TokenExchangeProfileTypeEnum'
        created_at:
          type: string
          description: The time when this profile was created.
          default: '2024-01-01T00:00:00.000Z'
          format: date-time
        updated_at:
          type: string
          description: The time when this profile was updated.
          default: '2024-01-01T00:00:00.000Z'
          format: date-time
    CreateTokenExchangeProfileRequestContent:
      type: object
      additionalProperties: false
      required:
      - name
      - subject_token_type
      - action_id
      - type
      properties:
        name:
          type: string
          description: Friendly name of this profile.
          default: Token Exchange Profile 1
          minLength: 3
          maxLength: 50
        subject_token_type:
          type: string
          description: Subject token type for this profile. When receiving a token exchange request on the Authentication API, the corresponding token exchange profile with a matching subject_token_type will be executed. This must be a URI.
          minLength: 8
          maxLength: 100
          format: url
        action_id:
          type: string
          description: The ID of the Custom Token Exchange action to execute for this profile, in order to validate the subject_token. The action must use the custom-token-exchange trigger.
          minLength: 1
          maxLength: 36
        type:
          $ref: '#/components/schemas/TokenExchangeProfileTypeEnum'
    TokenExchangeProfileResponseContent:
      type: object
      additionalProperties: true
      properties:
        id:
          type: string
          description: The unique ID of the token exchange profile.
          format: token-exchange-profile-id
        name:
          type: string
          description: Friendly name of this profile.
          default: Token Exchange Profile 1
          minLength: 3
          maxLength: 50
        subject_token_type:
          type: string
          description: Subject token type for this profile. When receiving a token exchange request on the Authentication API, the corresponding token exchange profile with a matching subject_token_type will be executed. This must be a URI.
          minLength: 8
          maxLength: 100
          format: url
        action_id:
          type: string
          description: The ID of the Custom Token Exchange action to execute for this profile, in order to validate the subject_token. The action must use the custom-token-exchange trigger.
          minLength: 1
          maxLength: 36
        type:
          $ref: '#/components/schemas/TokenExchangeProfileTypeEnum'
        created_at:
          type: string
          description: The time when this profile was created.
          default: '2024-01-01T00:00:00.000Z'
          format: date-time
        updated_at:
          type: string
          description: The time when this profile was updated.
          default: '2024-01-01T00:00:00.000Z'
          format: date-time
    ListTokenExchangeProfileResponseContent:
      type: object
      additionalProperties: false
      properties:
        next:
          type: string
          description: Opaque identifier for use with the <i>from</i> query parameter for the next page of results.<br/>This identifier is valid for 24 hours.
        token_exchange_profiles:
          type: array
          items:
            $ref: '#/components/schemas/TokenExchangeProfileResponseContent'
    TokenExchangeProfileTypeEnum:
      type: string
      description: The type of the profile, which controls how the profile will be executed when receiving a token exchange request.
      minLength: 1
      maxLength: 21
      enum:
      - custom_authentication
    GetTokenExchangeProfileResponseContent:
      type: object
      additionalProperties: true
      properties:
        id:
          type: string
          description: The unique ID of the token exchange profile.
          format: token-exchange-profile-id
        name:
          type: string
          description: Friendly name of this profile.
          default: Token Exchange Profile 1
          minLength: 3
          maxLength: 50
        subject_token_type:
          type: string
          description: Subject token type for this profile. When receiving a token exchange request on the Authentication API, the corresponding token exchange profile with a matching subject_token_type will be executed. This must be a URI.
          minLength: 8
          maxLength: 100
          format: url
        action_id:
          type: string
          description: The ID of the Custom Token Exchange action to execute for this profile, in order to validate the subject_token. The action must use the custom-token-exchange trigger.
          minLength: 1
          maxLength: 36
        type:
          $ref: '#/components/schemas/TokenExchangeProfileTypeEnum'
        created_at:
          type: string
          description: The time when this profile was created.
          default: '2024-01-01T00:00:00.000Z'
          format: date-time
        updated_at:
          type: string
          description: The time when this profile was updated.
          default: '2024-01-01T00:00:00.000Z'
          format: date-time
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      bearerFormat: jwt
    oAuth2ClientCredentials:
      type: oauth2
      flows:
        clientCredentials:
          tokenUrl: /oauth/token/
          x-form-parameters:
            audience: /api/v2/
          scopes:
            create:actions: Create Actions
            read:actions: Read Actions
            update:actions: Update Actions
            delete:actions: Delete Actions
            read:anomaly_blocks: Read Anomaly Blocks
            delete:anomaly_blocks: Delete Anomaly Blocks
            read:attack_protection: Read Attack Protection
            update:attack_protection: Update Attack Protection
            create:authentication_methods: Create Authentication Methods
            read:authentication_methods: Read Authentication Methods
            update:authentication_methods: Update Authentication Methods
            delete:authentication_methods: Delete Authentication Methods
            read:branding: Read Branding
            update:branding: Update Branding
            delete:branding: Delete Branding
            create:client_credentials: Create Client Credentials
            read:client_credentials: Read Client Credentials
            update:client_credentials: Update Client Credentials
            delete:client_credentials: Delete Client Credentials
            create:client_grants: Create Client Grants
            read:client_grants: Read Client Grants
            update:client_grants: Update Client Grants
            delete:client_grants: Delete Client Grants
            read:client_keys: Read Client Keys
            update:client_keys: Update Client Keys
            read:client_summary: Read Client Summary
            update:client_token_vault_privileged_access: Update Client Token Vault Privileged Access
            create:clients: Create Clients
            read:clients: Read Clients
            update:clients: Update Clients
            delete:clients: Delete Clients
            create:connection_profiles: Create Connection Profiles
            read:connection_profiles: Read Connection Profiles
            update:connection_profiles: Update Connection Profiles
            delete:connection_profiles: Delete Connection Profiles
            create:connections: Create Connections
            read:connections: Read Connections
            update:connections: Update Connections
            delete:connections: Delete Connections
            create:connections_keys: Create Connections Keys
            read:connections_keys: Read Connections Keys
            update:connections_keys: Update Connections Keys
            read:current_user: Read Current User
            delete:current_user: Delete Current User
            create:current_user_device_credentials: Create Current User Device Credentials
            delete:current_user_device_credentials: Delete Current User Device Credentials
            update:current_user_identities: Update Current User Identities
            update:current_user_metadata: Update Current User Metadata
            create:custom_domains: Create Custom Domains
            read:custom_domains: Read Custom Domains
            update:custom_domains: Update Custom Domains
            delete:custom_domains: Delete Custom Domains
            create:custom_signing_keys: Create Custom Signing Keys
            read:custom_signing_keys: Read Custom Signing Keys
            update:custom_signing_keys: Update Custom Signing Keys
            delete:custom_signing_keys: Delete Custom Signing Keys
            read:device_credentials: Read Device Credentials
            delete:device_credentials: Delete Device Credentials
            create:directory_provisionings: Create Directory Provisionings
            read:directory_provisionings: Read Directory Provisionings
            update:directory_provisionings: Update Directory Provisionings
            delete:directory_provisionings: Delete Directory Provisionings
            create:email_provider: Create Email Provider
            read:email_provider: Read Email Provider
            update:email_provider: Update Email Provider
            delete:email_provider: Delete Email Provider
            create:email_templates: Create Email Templates
            read:email_templates: Read Email Templates
            update:email_templates: Update Email Templates
            create:encryption_keys: Create Encryption Keys
            read:encryption_keys: Read Encryption Keys
            update:encryption_keys: Update Encryption Keys
            delete:encryption_keys: Delete Encryption Keys
            read:event_deliveries: Read Event Deliveries
            update:event_deliveries: Update Event Deliveries
            create:event_streams: Create Event Streams
            read:event_streams: Read Event Streams
            update:event_streams: Update Event Streams
            delete:event_streams: Delete Event Streams
            read:events: Read Events
            read:federated_connections_tokens: Read Federated Connections Tokens
            delete:federated_connections_tokens: Delete Federated Connections Tokens
            create:flows: Create Flows
            read:flows: Read Flows
            update:flows: Update Flows
            delete:flows: Delete Flows
            read:flows_executions: Read Flows Executions
            delete:flows_executions: Delete Flows Executions
            create:flows_vault_connections: Create Flows Vault Connections
            read:flows_vault_connections: Read Flows Vault Connections
            update:flows_vault_connections: Update Flows Vault Connections
            delete:flows_vault_connections: Delete Flows Vault Connections
            create:forms: Create Forms
            read:forms: Read Forms
            update:forms: Update Forms
            delete:forms: Delete Forms
            read:grants: Read Grants
            delete:grants: Delete Grants
            read:group_members: Read Group Members
            read:groups: Read Groups
            delete:groups: Delete Groups
            create:guardian_enrollment_tickets: Create Guardian Enrollment Tickets
            read:guardian_enrollments: Read Guardian Enrollments
            delete:guardian_enrollments: Delete Guardian Enrollments
            read:guardian_factors: Read Guardian Factors
            update:guardian_factors: Update Guardian Factors
            create:hooks: Create Hooks
            read:hooks: Read Hooks
            update:hooks: Update Hooks
            delete:hooks: Delete Hooks
            create:log_streams: Create Log Streams
            read:log_streams: Read Log Streams
            update:log_streams: Update Log Streams
            delete:log_streams: Delete Log Streams
            read:logs: Read Logs
            read:logs_users: Read Logs Users
            read:mfa_policies: Read Mfa Policies
            update:mfa_policies: Update Mfa Policies
            create:network_acls: Create Network Acls
            read:network_acls: Read Network Acls
            update:network_acls: Update Network Acls
            delete:network_acls: Delete Network Acls
            create:organization_client_grants: Create Organization Client Grants
            read:organization_client_grants: Read Organization Client Grants
            delete:organization_client_grants: Delete Organization Client Grants
            create:organization_connections: Create Organization Connections
            read:organization_connections: Read Organization Connections
            update:organization_connections: Update Organization Connections
            delete:organization_connections: Delete Organization Connections
            create:organization_discovery_domains: Create Organization Discovery Domains
            read:organization_discovery_domains: Read Organization Discovery Domains
            update:organization_discovery_domains: Update Organization Discovery Domains
            delete:organization_discovery_domains: Delete Organization Discovery Domains
            create:organization_invitations: Create Organization Invitations
            read:organization_invitations: Read Organization Invitations
            delete:organization_invitations: Delete Organization Invitations
            create:organization_member_roles: Create Organization Member Roles
            read:organization_member_roles: Read Organization Member Roles
            delete:organization_member_roles: Delete Organization Member Roles
            create:organization_members: Create Organization Members
            read:organization_members: Read Organization Members
            delete:organization_members: Delete Organization Members
            create:organizations: Create Organizations
            read:organizations: Read Organizations
            update:organizations: Update Organizations
            delete:organizations: Delete Organizations
            read:organizations_summary: Read Organizations Summary
            create:phone_providers: Create Phone Providers
            read:phone_providers: Read Phone Providers
            update:phone_providers: Update Phone Providers
            delete:phone_providers: Delete Phone Providers
            create:phone_templates: Create Phone Templates
            read:phone_templates: Read Phone Templates
            update:phone_templates: Update Phone Templates
            delete:phone_templates: Delete Phone Templates
            read:prompts: Read Prompts
            update:prompts: Update Prompts
            read:refresh_tokens: Read Refresh Tokens
            update:refresh_tokens: Update Refresh Tokens
            delete:refresh_tokens: Delete Refresh Tokens
            create:resource_servers: Create Resource Servers
            read:resource_servers: Read Resource Servers
            update:resource_servers: Update Resource Servers
            delete:resource_servers: Delete Resource Servers
            create:role_members: Create Role Members
            read:role_members: Read Role Members
            delete:role_members: Delete Role Members
            create:roles: Create Roles
            read:roles: Read Roles
            update:roles: Update Roles
            delete:roles: Delete Roles
            create:rules: Create Rules
            read:rules: Read Rules
            update:rules: Update Rules
            delete:rules: Delete Rules
            read:rules_configs: Read Rules Configs
            update:rules_configs: Update Rules Configs
            delete:rules_configs: Delete Rules Configs
            create:scim_config: Create Scim Config
            read:scim_config: Read Scim Config
            update:scim_config: Update Scim Config
            delete:scim_config: Delete Scim Config
            create:scim_token: Create Scim Token
            read:scim_token: Read Scim Token
            delete:scim_token: Delete Scim Token
            read:self_service_profile_custom_texts: Read Self Service Profile Custom Texts
            update:self_service_profile_custom_texts: Update Self Service Profile Custom Texts
            create:self_service_profiles: Create Self Service Profiles
            read:self_service_profiles: Read Self Service Profiles
            update:self_service_profiles: Update Self Service Profiles
            delete:self_service_profiles: Delete Self Service Profiles
            read:sessions: Read Sessions
            update:sessions: Update Sessions
            delete:sessions: Delete Sessions
            create:signing_keys: Create Signing Keys
            read:signing_keys: Read Signing Keys
            update:signing_keys: Update Signing Keys
            create:sso_access_tickets: Create Sso Access Tickets
            delete:sso_access_tickets: Delete Sso Access Tickets
            read:stats: Read Stats
            read:tenant_settings: Read Tenant Settings
            update:tenant_settings: Update Tenant Settings
            create:token_exchange_profiles: Create Token Exchange Profiles
            read:token_exchange_profiles: Read Token Exchange Profiles
            update:token_exchange_profiles: Update Token Exchange Profiles
            delete:token_exchange_profiles: Delete Token Exchange Profiles
            create:user_attribute_profiles: Create User Attribute Profiles
            read:user_attribute_profiles: Read User Attribute Profiles
            update:user_attribute_profiles: Update User Attribute Profiles
            delete:user_attribute_profiles: Delete User Attribute Profiles
            read:user_idp_tokens: Read User Idp Tokens
            create:user_tickets: Create User Tickets
            create:users: Create Users
            read:users: Read Users
            update:users: Update Users
            delete:users: Delete Users
            update:users_app_metadata: Update Users App Metadata
            create:vdcs_templates: Create Vdcs Templates
            read:vdcs_templates: Read Vdcs Templates
            update:vdcs_templates: Update Vdcs Templates
            delete:vdcs_templates: Delete Vdcs Templates
externalDocs:
  description: Auth0 Management API Documentation
  url: https://auth0.com/docs/api/management/v2/